Vietnam.vn - Nền tảng quảng bá Việt Nam

Security holes in Samsung smartphones are being actively exploited

Báo Thanh niênBáo Thanh niên22/05/2023


According to The Hacker News , the vulnerability is assigned tracking code CVE-2023-21492 with CVSS score 4.4, affecting some Samsung devices using Android 11, 12 and 13. The Korean electronics company described it as an information disclosure vulnerability that can be exploited to bypass operating system memory protection measures (ASLR).

ASLR is a security technique designed to prevent heap overflows and code execution errors by hiding the location of executable files in the device's memory. Samsung said the vulnerability was privately disclosed to the company on January 17, 2023.

Details of how the vulnerability was exploited are not yet known, but vulnerabilities in Samsung phones have been used by commercial spyware vendors to deploy malware.

Lỗ hổng bảo mật trong smartphone Samsung đang bị khai thác tích cực - Ảnh 1.

Security vulnerabilities on Samsung phones have been listed in the KEV category by CISA

In August 2020, Google's Project Zero team demonstrated a zero-click remote MMS attack that leveraged two buffer overwrite vulnerabilities in the Quram qmg library (tracked code SVE-2020-16747 and SVE-2020-17675) to defeat the ASLR technique and execute code.

In response to the abuse, CISA added the vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, along with two Cisco IOS vulnerabilities (tracking numbers CVE-2004-1464 and CVE-2016-6415). CISA urged agencies to apply the patches by June 9, 2023.

Last week, CISA also added seven vulnerabilities to KEV, the oldest of which is a 13-year-old bug affecting Linux (CVE-2010-3904) that allows attackers to escalate privileges to the highest level.



Source link

Comment (0)

No data
No data

Same tag

Same category

G-Dragon exploded with the audience during his performance in Vietnam
Female fan wears wedding dress to G-Dragon concert in Hung Yen
Fascinated by the beauty of Lo Lo Chai village in buckwheat flower season
Me Tri young rice is on fire, bustling with the pounding rhythm of the pestle for the new crop.

Same author

Heritage

Figure

Enterprise

Me Tri young rice is on fire, bustling with the pounding rhythm of the pestle for the new crop.

News

Political System

Destination

Product